Assuming the user will not be connecting over vpn, but is both remote and non-technical, how would you expose Jellyfin to them securely?

  • FrederikNJS@piefed.zip
    link
    fedilink
    English
    arrow-up
    1
    ·
    1 hour ago

    If Jellyfin gets compromised, you risk everything else on the same server getting compromised, as well as everything that server can reach.

    VLANs can certainly reduce what is at risk, but wouldn’t the machine running the Jellyfin client be reachable from the Jellyfin server? And if they manage to move laterally to the client machine, what could they then reach from there?